Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Computer Errors...


  • Please log in to reply
1 reply to this topic

#1 Ody11

Ody11

  • Members
  • 1 posts
  • OFFLINE
  •  
  • Local time:05:02 PM

Posted 07 November 2010 - 11:15 AM

This is my first post here, I have tried to follow the directions given to the best of my very limited knowledge... I get redirected when trying to do searchs.. my tabs will not change over on FF or chrome..I have run spybot and advanced system care scans i have Avira Anti virus and have scanned with this as well..Hope someone can give me solution for my problem.. ty in advance.


DDS (Ver_10-11-05.01) - NTFSx86
Run by Owner at 10:30:50.95 on Fri 11/07/2008
Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_20
Microsoft Windows XP Home Edition 5.1.2600.3.1252.1.1033.18.1023.482 [GMT -5:00]

AV: AntiVir Desktop *On-access scanning enabled* (Updated) {AD166499-45F9-482A-A743-FDD3350758C7}

============== Running Processes ===============

C:\windows\system32\svchost -k DcomLaunch
svchost.exe
C:\windows\System32\svchost.exe -k netsvcs
svchost.exe
svchost.exe
C:\windows\system32\spoolsv.exe
C:\Program Files\Google\Update\GoogleUpdate.exe
C:\windows\Explorer.EXE
C:\Documents and Settings\Owner\Application Data\Microsoft\Windows\shell.exe
"C:\Documents and Settings\Owner\Application Data\Microsoft\svchost.exe"
C:\DOCUME~1\Owner\LOCALS~1\Temp\dwm.exe
C:\windows\system32\RunDll32.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\MOM.exe
C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
C:\Program Files\IObit\Advanced SystemCare 3\AWC.exe
svchost.exe
C:\Program Files\ATI Technologies\ATI.ACE\Core-Static\ccc.exe
C:\windows\System32\svchost.exe -k Akamai
C:\windows\system32\svchost.exe -k imgsvc
C:\windows\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Mozilla Firefox\plugin-container.exe
C:\Documents and Settings\Owner\Desktop\dds.scr

============== Pseudo HJT Report ===============

uStart Page = hxxp://google.ca/
uSearch Page =
uSearch Bar =
uInternet Settings,ProxyServer = http=127.0.0.1:50370
mSearchAssistant =
uWinlogon: Shell=explorer.exe,c:\documents and settings\owner\application data\microsoft\windows\shell.exe
uWindows: Load=c:\docume~1\owner\locals~1\temp\dwm.exe
BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: AskBar BHO: {201f27d4-3704-41d6-89c1-aa35e39143ed} - AskBar BHO
BHO: Spybot-S&D IE Protection: {53707962-6f74-2d53-2644-206d7942484f} - c:\program files\spybot - search & destroy\SDHelper.dll
BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
BHO: {AE7CD045-E861-484f-8273-0445EE161910} - No File
BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
BHO: Java™ Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
BHO: {F4971EE7-DAA0-4053-9964-665D8EE6A077} - No File
TB: Ask Toolbar: {3041d03e-fd4b-44e0-b742-2d9b88305f98} -
uRun: [SpybotSD TeaTimer] c:\program files\spybot - search & destroy\TeaTimer.exe
uRun: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "c:\program files\common files\ahead\lib\NMBgMonitor.exe"
uRun: [Advanced SystemCare 3] "c:\program files\iobit\advanced systemcare 3\AWC.exe" /startup
mRun: [Cmaudio] RunDll32 cmicnfg.cpl,CMICtrlWnd
mRun: [RemoteControl] "c:\program files\cyberlink\powerdvd\PDVDServ.exe"
mRun: [LanguageShortcut] "c:\program files\cyberlink\powerdvd\language\Language.exe"
mRun: [NeroFilterCheck] c:\program files\common files\ahead\lib\NeroCheck.exe
mRun: [avgnt] "c:\program files\avira\antivir desktop\avgnt.exe" /min
mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
mRun: [StartCCC] "c:\program files\ati technologies\ati.ace\core-static\CLIStart.exe" MSRun
mRun: [mumservice] c:\program files\motorola\software update\mumservice.exe
mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [svchost] c:\documents and settings\owner\application data\microsoft\svchost.exe
IE: Append to existing PDF
IE: Convert link target to Adobe PDF
IE: Convert link target to existing PDF
IE: Convert to Adobe PDF
IE: Save YouTube Video as MP3 - c:\program files\common files\dvdvideosoft\dll\IEContextMenuY.dll/scriptY2MP3.htm
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
IE: {38E51477-DDB4-4aed-9D61-D0C193E10749} - {38E51477-DDB4-4aed-9D61-D0C193E10749} - c:\program files\melodycan\YouTubeRipper.dll
IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~4\office12\REFIEBAR.DLL
IE: {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - {53707962-6F74-2D53-2644-206D7942484F} - c:\program files\spybot - search & destroy\SDHelper.dll
DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} - hxxp://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1252372911856
DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
DPF: {CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_20-windows-i586.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
Notify: AtiExtEvent - Ati2evxx.dll
SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll

================= FIREFOX ===================

FF - ProfilePath - c:\docume~1\owner\applic~1\mozilla\firefox\profiles\uqw41sp0.default\
FF - prefs.js: browser.search.defaulturl - hxxp://search.yahoo.com/search?ei=UTF-8&fr=ytff-sunm&p=
FF - prefs.js: browser.search.selectedEngine - Google
FF - prefs.js: browser.startup.homepage - hxxp://google.ca/
FF - prefs.js: keyword.URL - hxxp://search.yahoo.com/search?ei=UTF-8&fr=ytff-sunm&p=
FF - prefs.js: network.proxy.http - 127.0.0.1
FF - prefs.js: network.proxy.http_port - 50370
FF - prefs.js: network.proxy.type - 1
FF - component: c:\program files\mozilla firefox\extensions\{ab2ce124-6272-4b12-94a9-7303c7397bd1}\components\SkypeFfComponent.dll
FF - plugin: c:\documents and settings\all users\application data\nexonus\ngm\npNxGameUS.dll
FF - plugin: c:\documents and settings\owner\application data\mozilla\firefox\profiles\uqw41sp0.default\extensions\battlefieldheroespatcher@ea.com\platform\winnt_x86-msvc\plugins\npBFHUpdater.dll
FF - plugin: c:\program files\divx\divx plus web player\npdivx32.dll
FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
FF - plugin: c:\program files\google\update\1.2.183.39\npGoogleOneClick8.dll
FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
FF - plugin: c:\program files\pando networks\media booster\npPandoWebPlugin.dll
FF - HiddenExtension: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\microsoft.net\framework\v3.5\windows presentation foundation\dotnetassistantextension\
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0017-ABCDEFFEDCBA}
FF - HiddenExtension: Java Console: No Registry Reference - c:\program files\mozilla firefox\extensions\{CAFEEFAC-0016-0000-0020-ABCDEFFEDCBA}

---- FIREFOX POLICIES ----
pref(dom.disable_open_during_load, false); c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbaam7a8h", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqz9s", true); // Traditional
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--fiqs8s", true); // Simplified
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--j6w193g", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4ar", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgberp4a5d4a87g", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7c0a67fbc", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--mgbqly7cvafr", true);
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kpry57d", true); // Traditional
c:\program files\mozilla firefox\greprefs\all.js - pref("network.IDN.whitelist.xn--kprw13d", true); // Simplified

============= SERVICES / DRIVERS ===============

R1 avgio;avgio;c:\program files\avira\antivir desktop\avgio.sys [2009-9-16 11608]
R1 oreans32;oreans32;c:\windows\system32\drivers\oreans32.sys [2008-4-5 33824]
R2 Akamai;Akamai NetSession Interface;c:\windows\system32\svchost.exe -k Akamai [2004-8-4 14336]
R2 avgntflt;avgntflt;c:\windows\system32\drivers\avgntflt.sys [2009-9-16 56816]
R3 CamdAudio;CamdAudio;c:\windows\system32\drivers\CamdAudio.sys [2009-12-22 23096]
S3 motccgp;Motorola USB Composite Device Driver;c:\windows\system32\drivers\motccgp.sys [1999-2-2 19712]
S3 motccgpfl;MotCcgpFlService;c:\windows\system32\drivers\motccgpfl.sys [1999-2-2 8320]
S3 MotDev;Motorola Inc. USB Device;c:\windows\system32\drivers\motodrv.sys [1999-2-2 42752]
S3 motport;Motorola USB Diagnostic Port;c:\windows\system32\drivers\motport.sys [1999-2-2 23936]
S3 XDva321;XDva321;\??\c:\windows\system32\xdva321.sys --> c:\windows\system32\XDva321.sys [?]
S3 XDva323;XDva323;\??\c:\windows\system32\xdva323.sys --> c:\windows\system32\XDva323.sys [?]
S3 XDva326;XDva326;\??\c:\windows\system32\xdva326.sys --> c:\windows\system32\XDva326.sys [?]
S3 XDva327;XDva327;\??\c:\windows\system32\xdva327.sys --> c:\windows\system32\XDva327.sys [?]
S3 XDva336;XDva336;\??\c:\windows\system32\xdva336.sys --> c:\windows\system32\XDva336.sys [?]
S3 XDva337;XDva337;\??\c:\windows\system32\xdva337.sys --> c:\windows\system32\XDva337.sys [?]
S4 AntiVirSchedulerService;Avira AntiVir Scheduler;c:\program files\avira\antivir desktop\sched.exe [2009-9-16 108289]
S4 AntiVirService;Avira AntiVir Guard;c:\program files\avira\antivir desktop\avguard.exe [2009-9-16 185089]
S4 ASKUpgrade;ASKUpgrade;c:\program files\askbardis\bar\bin\askupgrade.exe --> c:\program files\askbardis\bar\bin\ASKUpgrade.exe [?]
S4 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2008-5-27 136176]
S4 SMServer;SMServer;c:\windows\system32\snmvtsvc.exe [2009-12-22 249856]

=============== File Associations ===============

.txt=

=============== Created Last 30 ================

2010-10-25 18:19:52 -------- d-----w- c:\docume~1\alluse~1\applic~1\regid.1986-12.com.adobe
2010-10-15 21:00:01 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\Temp
2010-10-14 02:54:25 974848 -c----w- c:\windows\system32\dllcache\mfc42.dll
2010-10-14 02:53:10 617472 -c----w- c:\windows\system32\dllcache\comctl32.dll
2010-10-13 21:17:29 -------- d-----r- c:\program files\Skype
2010-10-03 19:52:44 -------- d-----w- c:\docume~1\alluse~1\applic~1\DivX
2010-09-27 18:42:42 1156488 ----a-w- c:\program files\mozilla firefox\extensions\{ab2ce124-6272-4b12-94a9-7303c7397bd1}\components\SkypeFfComponent.dll
2010-09-22 22:10:52 103864 ----a-w- c:\program files\mozilla firefox\plugins\nppdf32.dll
2010-09-22 22:10:52 103864 ----a-w- c:\program files\internet explorer\plugins\nppdf32.dll
2010-09-18 16:23:26 974848 -c----w- c:\windows\system32\dllcache\mfc42u.dll
2010-09-10 21:51:59 -------- d-----w- c:\docume~1\owner\applic~1\GetRightToGo
2010-08-27 05:57:43 99840 -c----w- c:\windows\system32\dllcache\srvsvc.dll
2010-08-17 13:17:06 58880 -c----w- c:\windows\system32\dllcache\spoolsv.exe
2010-08-13 22:45:14 45392 ------w- c:\windows\system32\AdobePDF.dll
2010-07-31 15:05:21 2205064 ----a-w- c:\docume~1\alluse~1\applic~1\shs_setup_4059-354328.exe
2010-07-29 19:04:06 -------- d-----w- c:\docume~1\owner\applic~1\DVDVideoSoftIEHelpers
2010-07-16 12:05:55 1288192 -c----w- c:\windows\system32\dllcache\ole32.dll
2010-07-13 19:54:08 744448 -c----w- c:\windows\system32\dllcache\helpsvc.exe
2010-07-07 13:45:58 98304 ----a-w- c:\windows\system32\CmdLineExt.dll
2010-07-01 01:55:29 -------- d-----w- c:\program files\D2LOD-1.12A-enUS
2010-07-01 00:39:10 -------- d-----w- c:\program files\D2-1.12A-enUS
2010-07-01 00:38:29 -------- d-----w- c:\program files\common files\Blizzard Entertainment
2010-06-25 13:07:34 719832 ----a-w- c:\program files\mozilla firefox\mozcpp19.dll
2010-06-25 13:07:34 16856 ----a-w- c:\program files\mozilla firefox\plugin-container.exe
2010-06-18 17:45:17 293376 -c----w- c:\windows\system32\dllcache\winsrv.dll
2010-06-12 00:39:59 743424 -c----w- c:\windows\system32\dllcache\iedvtool.dll
2010-05-30 04:22:45 -------- d-----w- c:\program files\Windows Media Connect 2
2010-05-29 13:36:27 52509216 --sha-w- c:\windows\system32\drivers\fidbox.dat
2010-05-29 13:35:46 1182752 --sha-w- c:\windows\system32\drivers\fidbox2.dat
2010-05-01 14:34:27 411368 ----a-w- c:\windows\system32\deployJava1.dll
2010-05-01 14:34:27 411368 ----a-w- c:\program files\mozilla firefox\plugins\npdeployJava1.dll
2010-05-01 07:26:23 221184 ----a-w- c:\windows\system32\wmpns.dll
2010-04-25 01:04:34 17237376 ----a-w- c:\program files\common files\microsoft shared\office12\MSO.DLL
2010-04-20 05:30:08 285824 -c----w- c:\windows\system32\dllcache\atmfd.dll
2010-04-16 15:36:56 406016 -c----w- c:\windows\system32\dllcache\usp10.dll
2010-03-31 04:16:34 99176 ----a-w- c:\windows\system32\PresentationHostProxy.dll
2010-03-31 04:10:40 295264 ----a-w- c:\windows\system32\PresentationHost.exe
2010-03-30 16:24:40 317440 -c----w- c:\windows\system32\dllcache\mp4sdecd.dll
2010-03-20 21:55:47 -------- d-----w- c:\program files\Soldier of Fortune II - Double Helix
2010-03-17 03:21:05 214592 -c--a-w- c:\windows\system32\PnkBstrB.xtr
2010-03-17 03:19:52 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\PunkBuster
2010-03-17 03:14:56 2407792 ----a-w- c:\windows\system32\pbsvc_heroes.exe
2010-03-17 02:34:02 -------- d-----w- c:\program files\EA Games
2010-03-10 16:37:59 3558912 -c----w- c:\windows\system32\dllcache\moviemk.exe
2010-03-05 14:37:40 65536 -c----w- c:\windows\system32\dllcache\asycfilt.dll
2010-02-23 23:23:16 60032 -c--a-w- c:\windows\system32\dllcache\usbaudio.sys
2010-02-23 23:23:16 60032 ----a-w- c:\windows\system32\drivers\USBAUDIO.sys
2010-02-12 04:33:11 100864 -c----w- c:\windows\system32\dllcache\6to4svc.dll
2010-01-27 16:53:46 -------- d-----w- c:\windows\pss
2010-01-20 23:00:54 -------- d-----w- c:\program files\Norton Security Scan
2010-01-13 14:01:25 86016 -c----w- c:\windows\system32\dllcache\cabview.dll
2010-01-10 22:09:39 -------- d-----w- C:\CFLog
2010-01-09 20:31:56 0 -c--a-w- c:\windows\ativpsrm.bin
2010-01-09 20:07:16 -------- d-----w- c:\docume~1\alluse~1\applic~1\Nexon
2010-01-09 19:30:54 69715 ----a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\ctor.dll
2010-01-09 19:30:54 5632 -c--a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\DotNetInstaller.exe
2010-01-09 19:30:54 32768 ----a-w- c:\program files\common files\installshield\professional\runtime\Objectps.dll
2010-01-09 19:30:54 266240 -c--a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iscript.dll
2010-01-09 19:30:54 192512 -c--a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iuser.dll
2010-01-09 19:30:53 729088 -c--a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iKernel.dll
2010-01-09 19:30:53 311428 -c--a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\setup.dll
2010-01-09 19:30:53 188548 -c--a-w- c:\program files\common files\installshield\professional\runtime\09\01\intel32\iGdi.dll
2010-01-09 19:28:21 -------- d-----w- C:\ATI
2010-01-09 18:20:00 -------- d-sh--w- c:\windows\ftpcache
2010-01-06 23:03:25 -------- d-----w- c:\program files\common files\Symantec Shared
2010-01-05 19:02:42 -------- d-----w- c:\docume~1\alluse~1\applic~1\Norton
2010-01-05 19:02:41 -------- d-----w- c:\docume~1\alluse~1\applic~1\Symantec
2010-01-05 19:02:26 -------- d-----w- c:\docume~1\alluse~1\applic~1\NortonInstaller
2010-01-03 03:56:11 -------- d-sh--w- c:\docume~1\alluse~1\applic~1\SecuROM
2010-01-03 03:39:32 -------- d-----w- c:\windows\system32\AGEIA
2010-01-03 03:39:03 -------- d-----w- c:\program files\common files\Wise Installation Wizard
2009-12-27 17:09:10 691696 ----a-w- c:\windows\system32\drivers\sptd.sys
2009-12-27 17:08:13 -------- d-----w- c:\docume~1\owner\applic~1\DAEMON Tools Lite
2009-12-27 17:08:09 -------- d-----w- c:\docume~1\alluse~1\applic~1\DAEMON Tools Lite
2009-12-26 19:08:39 -------- d-----w- c:\docume~1\alluse~1\applic~1\Toolbar4
2009-12-26 19:08:29 -------- d-----w- c:\program files\HyCam2
2009-12-25 19:05:22 -------- d-----w- c:\program files\common files\Akamai
2009-12-24 06:59:40 177664 -c----w- c:\windows\system32\dllcache\wintrust.dll
2009-12-23 04:46:34 249856 ----a-w- c:\windows\system32\snmvtsvc.exe
2009-12-23 04:46:33 5688 -c--a-w- c:\windows\system32\CamdVideo.sys
2009-12-23 04:46:33 23096 ----a-w- c:\windows\system32\drivers\CamdAudio.sys
2009-12-23 04:46:33 23096 ----a-w- c:\windows\system32\CamdAudio.sys
2009-12-23 04:46:33 14392 -c--a-w- c:\windows\system32\CamdVideo.dll
2009-12-23 04:46:31 -------- d-----w- c:\program files\MelodyCan
2009-12-16 18:43:27 343040 -c----w- c:\windows\system32\dllcache\mspaint.exe
2009-12-14 07:08:23 33280 -c----w- c:\windows\system32\dllcache\csrsrv.dll
2009-12-12 16:16:49 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\Identities
2009-12-10 16:48:13 -------- d-----w- c:\program files\AskBardis
2009-12-10 00:08:52 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\Google
2009-12-10 00:08:41 -------- d-----w- c:\program files\common files\DivX Shared
2009-12-10 00:08:38 -------- d-----w- c:\program files\DivX
2009-12-04 02:13:57 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\Microsoft Help
2009-11-27 21:53:49 -------- d-----w- c:\program files\InterActual
2009-11-27 17:11:44 17920 -c----w- c:\windows\system32\dllcache\msyuv.dll
2009-11-27 16:07:35 8704 -c----w- c:\windows\system32\dllcache\tsbyuv.dll
2009-11-27 16:07:34 48128 -c----w- c:\windows\system32\dllcache\iyuv_32.dll
2009-11-27 16:07:34 11264 -c----w- c:\windows\system32\dllcache\msrle32.dll
2009-11-21 08:46:32 86016 ----a-w- c:\windows\system32\frapsvid.dll
2009-11-14 03:51:49 -------- d-----w- c:\windows\.jagex_cache_32
2009-11-14 03:50:40 73728 ----a-w- c:\windows\system32\javacpl.cpl
2009-11-14 00:47:38 98304 ----a-w- c:\program files\mozilla firefox\plugins\npDivxPlayerPlugin.dll
2009-11-14 00:47:32 90112 -c--a-w- c:\windows\system32\dpl100.dll
2009-11-14 00:47:28 856064 -c--a-w- c:\windows\system32\divx_xx0c.dll
2009-11-14 00:47:28 856064 -c--a-w- c:\windows\system32\divx_xx07.dll
2009-11-14 00:47:28 847872 -c--a-w- c:\windows\system32\divx_xx0a.dll
2009-11-14 00:47:28 843776 -c--a-w- c:\windows\system32\divx_xx16.dll
2009-11-14 00:47:28 839680 -c--a-w- c:\windows\system32\divx_xx11.dll
2009-11-14 00:47:28 696320 ----a-w- c:\windows\system32\DivX.dll
2009-11-11 08:00:25 -------- d-----w- c:\program files\MSXML 4.0
2009-11-11 04:08:24 94208 ----a-w- c:\windows\system32\QuickTimeVR.qtx
2009-11-11 04:08:24 69632 ----a-w- c:\windows\system32\QuickTime.qts
2009-11-10 03:18:16 60416 ----a-w- c:\windows\system32\dsetup.dll
2009-11-10 03:18:16 132880 ----a-w- c:\windows\system32\Msinet.ocx
2009-11-10 03:13:41 368912 ----a-w- c:\windows\system32\vbar332.dll
2009-11-10 03:13:41 152848 ----a-w- c:\windows\system32\COMDLG32.OCX
2009-11-10 03:13:41 1081616 ----a-w- c:\windows\system32\MSCOMCTL.OCX
2009-11-07 05:07:08 49488 ----a-w- c:\windows\system32\netfxperf.dll
2009-11-07 05:07:04 297808 ----a-w- c:\windows\system32\mscoree.dll
2009-11-07 05:06:46 1130824 ----a-w- c:\windows\system32\dfshim.dll
2009-10-27 17:14:28 11520 ----a-w- c:\windows\system32\mot_ci.dll
2009-10-25 03:26:07 -------- d-----w- c:\program files\Microsoft Games
2009-10-21 05:38:36 75776 -c----w- c:\windows\system32\dllcache\strmfilt.dll
2009-10-21 05:38:36 25088 -c----w- c:\windows\system32\dllcache\httpapi.dll
2009-10-20 16:20:16 265728 -c----w- c:\windows\system32\dllcache\http.sys
2009-10-17 16:20:44 -------- d-----w- c:\docume~1\alluse~1\applic~1\NexonUS
2009-10-17 15:55:32 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\PMB Files
2009-10-17 15:55:29 -------- d-----w- c:\docume~1\alluse~1\applic~1\PMB Files
2009-10-17 15:55:13 -------- d-----w- c:\program files\Pando Networks
2009-10-16 21:08:47 -------- d-----w- c:\program files\Avi Player
2009-10-13 10:30:16 270336 -c----w- c:\windows\system32\dllcache\oakley.dll
2009-10-12 13:38:19 149504 -c----w- c:\windows\system32\dllcache\rastls.dll
2009-10-12 13:38:18 79872 -c----w- c:\windows\system32\dllcache\raschap.dll
2009-10-10 16:06:04 -------- d-sh--w- c:\documents and settings\owner\PrivacIE
2009-10-10 16:03:32 -------- d-----w- c:\program files\common files\Adobe Systems Shared
2009-10-08 15:12:00 -------- d-----w- C:\Netgame
2009-10-03 23:14:19 139152 -c--a-w- c:\docume~1\owner\applic~1\PnkBstrK.sys
2009-10-03 23:14:00 -------- d-----w- c:\windows\system32\LogFiles
2009-09-30 02:20:58 442368 ----a-w- c:\windows\system32\ATIDEMGX.dll
2009-09-30 01:34:06 49664 -c--a-w- c:\windows\system32\amdpcom32.dll
2009-09-30 01:28:54 126976 ----a-w- c:\windows\system32\atiadlxx.dll
2009-09-30 01:27:54 45056 -c--a-w- c:\windows\system32\aticalrt.dll
2009-09-30 01:27:42 45056 -c--a-w- c:\windows\system32\aticalcl.dll
2009-09-30 01:26:52 290816 ----a-w- c:\windows\system32\atiok3x2.dll
2009-09-30 01:26:04 3227648 -c--a-w- c:\windows\system32\aticaldd.dll
2009-09-29 15:13:04 -------- d--h--w- c:\windows\PIF
2009-09-29 04:36:35 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\Adobe
2009-09-29 01:49:16 1231 -c--a-w- c:\windows\system32\drivers\ect\hosts127.0.0.1 activate.adobe.com.com
2009-09-29 01:49:16 -------- d-----w- c:\windows\system32\drivers\ect
2009-09-25 02:42:14 5632 -c--a-w- c:\windows\system32\ptpusb.dll
2009-09-25 02:42:13 15104 -c--a-w- c:\windows\system32\dllcache\usbscan.sys
2009-09-25 02:42:13 15104 ----a-w- c:\windows\system32\drivers\usbscan.sys
2009-09-25 02:42:12 159232 ----a-w- c:\windows\system32\ptpusd.dll
2009-09-17 13:13:46 -------- d-sh--w- c:\documents and settings\owner\IETldCache
2009-09-17 13:11:05 100352 -c----w- c:\windows\system32\dllcache\iecompat.dll
2009-09-17 13:10:53 -------- d-----w- c:\windows\ie8updates
2009-09-17 13:10:35 602112 -c----w- c:\windows\system32\dllcache\msfeeds.dll
2009-09-17 13:10:35 55296 -c----w- c:\windows\system32\dllcache\msfeedsbs.dll
2009-09-17 13:10:35 247808 -c----w- c:\windows\system32\dllcache\ieproxy.dll
2009-09-17 13:10:35 1986560 -c----w- c:\windows\system32\dllcache\iertutil.dll
2009-09-17 13:10:35 12800 -c----w- c:\windows\system32\dllcache\xpshims.dll
2009-09-17 13:10:35 11080192 -c----w- c:\windows\system32\dllcache\ieframe.dll
2009-09-17 13:09:22 -------- dc-h--w- c:\windows\ie8
2009-09-17 03:04:38 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys
2009-09-17 03:04:33 -------- d-----w- c:\program files\Avira
2009-09-17 03:04:33 -------- d-----w- c:\docume~1\alluse~1\applic~1\Avira
2009-09-15 21:55:21 -------- d-----w- c:\docume~1\alluse~1\applic~1\{755AC846-7372-4AC8-8550-C52491DAA8BD}
2009-09-14 08:10:25 274288 ----a-w- c:\windows\system32\mucltui.dll
2009-09-14 08:10:25 215920 ----a-w- c:\windows\system32\muweb.dll
2009-09-14 08:10:25 16736 ----a-w- c:\windows\system32\mucltui.dll.mui
2009-09-14 04:09:28 -------- d-----w- c:\documents and settings\owner\Tracing
2009-09-14 04:08:02 -------- d-----w- c:\program files\Windows Live SkyDrive
2009-09-14 04:03:48 -------- d-----w- c:\program files\common files\Windows Live
2009-09-09 02:05:17 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\Ahead
2009-09-09 02:00:44 -------- d-----w- c:\program files\Nero
2009-09-09 02:00:44 -------- d-----w- c:\docume~1\alluse~1\applic~1\Nero
2009-09-09 02:00:29 47616 -c--a-w- c:\program files\windows media player\msoobci.dll
2009-09-09 02:00:29 1669120 ----a-w- c:\program files\windows media player\wmsetsdk.exe
2009-09-09 01:59:59 -------- d-----w- c:\windows\RegisteredPackages
2009-09-09 01:56:05 -------- d-----w- C:\MyWorks
2009-09-09 01:55:53 24064 -c----w- c:\windows\system32\msxml3a.dll
2009-09-08 22:00:31 153088 -c----w- c:\windows\system32\dllcache\triedit.dll
2009-09-08 16:39:37 -------- d-----w- c:\program files\DVDVideoSoft
2009-09-08 16:39:37 -------- d-----w- c:\program files\common files\DVDVideoSoft
2009-09-08 15:06:28 -------- d-----w- c:\program files\uTorrent
2009-09-08 15:05:59 -------- d-----w- c:\docume~1\owner\applic~1\uTorrent
2009-09-08 05:05:25 -------- d-----w- c:\windows\system32\XPSViewer
2009-09-08 05:05:04 89088 ----a-w- c:\windows\system32\spool\prtprocs\w32x86\filterpipelineprintproc.dll
2009-09-08 05:04:57 89088 -c----w- c:\windows\system32\dllcache\filterpipelineprintproc.dll
2009-09-08 05:04:57 597504 -c----w- c:\windows\system32\spool\prtprocs\w32x86\printfilterpipelinesvc.exe
2009-09-08 05:04:57 597504 -c----w- c:\windows\system32\dllcache\printfilterpipelinesvc.exe
2009-09-08 05:04:57 575488 -c----w- c:\windows\system32\dllcache\xpsshhdr.dll
2009-09-08 05:04:57 575488 ------w- c:\windows\system32\xpsshhdr.dll
2009-09-08 05:04:57 117760 -c----w- c:\windows\system32\prntvpt.dll
2009-09-08 05:04:56 1676288 -c----w- c:\windows\system32\xpssvcs.dll
2009-09-08 05:04:56 1676288 -c----w- c:\windows\system32\dllcache\xpssvcs.dll
2009-09-08 03:40:23 -------- d-----w- c:\program files\WindSolutions
2009-09-08 03:38:49 -------- d-----w- c:\docume~1\owner\applic~1\iCloner
2009-09-08 03:15:17 -------- d-----w- c:\docume~1\owner\applic~1\CopyTrans
2009-09-08 03:14:33 -------- d-----w- c:\docume~1\owner\applic~1\WindSolutions
2009-09-08 03:14:33 -------- d-----w- c:\docume~1\alluse~1\applic~1\WindSolutions
2009-09-08 02:20:05 26600 ----a-w- c:\windows\system32\drivers\GEARAspiWDM.sys
2009-09-08 02:20:05 107368 ----a-w- c:\windows\system32\GEARAspi.dll
2009-09-08 02:19:51 -------- d-----w- c:\docume~1\alluse~1\applic~1\{8CD7F5AF-ECFA-4793-BF40-D8F42DBFF906}
2009-09-08 02:19:04 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\Apple
2009-09-08 02:18:03 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\Apple Computer
2009-09-08 02:11:33 26368 -c--a-w- c:\windows\system32\dllcache\usbstor.sys
2009-09-08 02:02:39 272128 -c----w- c:\windows\system32\dllcache\bthport.sys
2009-09-08 02:00:10 473600 -c----w- c:\windows\system32\dllcache\fastprox.dll
2009-09-08 02:00:10 453120 -c----w- c:\windows\system32\dllcache\wmiprvsd.dll
2009-09-08 02:00:10 401408 -c----w- c:\windows\system32\dllcache\rpcss.dll
2009-09-08 02:00:10 284160 -c----w- c:\windows\system32\dllcache\pdh.dll
2009-09-08 02:00:10 227840 -c----w- c:\windows\system32\dllcache\wmiprvse.exe
2009-09-08 02:00:10 110592 -c----w- c:\windows\system32\dllcache\services.exe
2009-09-08 02:00:09 730112 -c----w- c:\windows\system32\dllcache\lsasrv.dll
2009-09-08 02:00:09 714752 -c----w- c:\windows\system32\dllcache\ntdll.dll
2009-09-08 02:00:09 617472 -c----w- c:\windows\system32\dllcache\advapi32.dll
2009-09-08 02:00:09 2146304 -c----w- c:\windows\system32\dllcache\ntkrnlmp.exe
2009-09-08 02:00:08 2189952 -c----w- c:\windows\system32\dllcache\ntoskrnl.exe
2009-09-08 02:00:08 2024448 -c----w- c:\windows\system32\dllcache\ntkrpamp.exe
2009-09-08 01:59:30 203136 -c----w- c:\windows\system32\dllcache\rmcast.sys
2009-09-08 01:59:28 455680 -c----w- c:\windows\system32\dllcache\mrxsmb.sys
2009-09-08 01:59:26 357248 -c----w- c:\windows\system32\dllcache\srv.sys
2009-09-08 01:59:23 331776 -c----w- c:\windows\system32\dllcache\msadce.dll
2009-09-08 01:59:20 1315328 -c----w- c:\windows\system32\dllcache\msoe.dll
2009-09-08 01:58:39 692736 -c----w- c:\windows\system32\dllcache\inetcomm.dll
2009-09-08 01:57:11 337408 -c----w- c:\windows\system32\dllcache\netapi32.dll
2009-09-08 01:57:04 1172480 -c----w- c:\windows\system32\dllcache\msxml3.dll
2009-09-08 01:56:41 5120 ----a-w- c:\windows\system32\xpsp4res.dll
2009-09-08 01:56:41 218112 -c----w- c:\windows\system32\dllcache\wordpad.exe
2009-09-08 01:50:05 -------- d-----w- c:\program files\Spybot - Search & Destroy
2009-09-08 01:50:05 -------- d-----w- c:\docume~1\alluse~1\applic~1\Spybot - Search & Destroy
2009-09-08 01:49:13 -------- d--h--w- c:\windows\msdownld.tmp
2009-09-08 01:49:10 -------- d-----w- c:\windows\Logs
2009-09-08 01:46:18 -------- d-----w- c:\windows\system32\scripting
2009-09-08 01:46:17 -------- d-----w- c:\windows\system32\en
2009-09-08 01:46:17 -------- d-----w- c:\windows\system32\bits
2009-09-08 01:46:17 -------- d-----w- c:\windows\l2schemas
2009-09-08 01:45:23 -------- d-----w- c:\windows\ServicePackFiles
2009-09-08 01:43:53 -------- d-----w- c:\windows\network diagnostic
2009-09-08 01:40:45 -------- d-----w- c:\windows\EHome
2009-09-08 01:39:29 -------- d-----w- c:\windows\system32\Adobe
2009-09-08 01:30:49 25471 ------w- c:\windows\system32\drivers\watv10nt.sys
2009-09-08 01:29:45 73216 ------w- c:\windows\system32\drivers\atintuxx.sys
2009-09-08 01:23:17 26144 -c--a-w- c:\windows\system32\spupdsvc.exe
2009-09-08 01:23:17 -------- d-----w- c:\windows\system32\PreInstall
2009-09-08 01:23:16 -------- d--h--w- c:\windows\$hf_mig$
2009-09-08 01:22:11 21728 ----a-w- c:\windows\system32\wucltui.dll.mui
2009-09-08 01:22:11 17632 ----a-w- c:\windows\system32\wuaueng.dll.mui
2009-09-08 01:22:11 15072 ----a-w- c:\windows\system32\wuaucpl.cpl.mui
2009-09-08 01:22:10 15064 -c--a-w- c:\windows\system32\wuapi.dll.mui
2009-09-08 01:22:10 -------- d-----w- c:\windows\system32\SoftwareDistribution
2009-09-08 01:20:21 -------- d-sh--w- c:\documents and settings\owner\UserData
2009-09-08 01:09:39 -------- d-----w- c:\windows\setup.pss
2009-09-08 01:09:06 18944 ----a-w- c:\windows\system32\lprmon.dll
2009-09-08 01:09:05 22528 -c--a-w- c:\windows\system32\lpdsvc.dll
2009-09-08 01:09:05 22528 -c--a-w- c:\windows\system32\dllcache\lpdsvc.dll
2009-09-08 01:06:54 -------- d-----w- c:\docume~1\owner\locals~1\applic~1\ATI
2009-09-08 01:01:48 -------- d-----w- c:\windows\system32\ReinstallBackups

==================== Find3M ====================

2010-09-18 16:23:26 974848 ----a-w- c:\windows\system32\mfc42u.dll
2010-09-18 06:53:25 974848 ----a-w- c:\windows\system32\mfc42.dll
2010-09-18 06:53:25 954368 ----a-w- c:\windows\system32\mfc40.dll
2010-09-18 06:53:25 953856 ----a-w- c:\windows\system32\mfc40u.dll
2010-09-10 05:58:08 916480 ----a-w- c:\windows\system32\wininet.dll
2010-09-10 05:58:06 43520 ----a-w- c:\windows\system32\licmgr10.dll
2010-09-10 05:58:06 1469440 ------w- c:\windows\system32\inetcpl.cpl
2010-09-01 11:51:14 285824 ----a-w- c:\windows\system32\atmfd.dll
2010-08-31 13:42:52 1852800 ----a-w- c:\windows\system32\win32k.sys
2010-08-27 08:02:29 119808 ----a-w- c:\windows\system32\t2embed.dll
2010-08-27 05:57:43 99840 ----a-w- c:\windows\system32\srvsvc.dll
2010-08-23 16:12:04 617472 ----a-w- c:\windows\system32\comctl32.dll
2010-08-17 13:17:06 58880 ----a-w- c:\windows\system32\spoolsv.exe
2010-08-16 08:45:00 590848 ----a-w- c:\windows\system32\rpcrt4.dll
2010-07-16 12:05:55 1288192 ----a-w- c:\windows\system32\ole32.dll
2010-06-30 12:31:35 149504 ----a-w- c:\windows\system32\schannel.dll
2010-06-18 17:45:17 293376 ----a-w- c:\windows\system32\winsrv.dll
2010-06-17 14:03:00 80384 ----a-w- c:\windows\system32\iccvid.dll
2010-06-15 16:17:24 143422 ----a-w- c:\windows\system32\l3codecx.ax
2010-06-14 14:31:20 744448 ----a-w- c:\windows\pchealth\helpctr\binaries\helpsvc.exe
2010-06-14 07:41:45 1172480 ----a-w- c:\windows\system32\msxml3.dll
2010-06-09 07:43:36 692736 ----a-w- c:\windows\system32\inetcomm.dll
2010-04-28 02:25:02 2189952 ----a-w- c:\windows\system32\ntoskrnl.exe
2010-04-27 13:05:00 2066816 ----a-w- c:\windows\system32\ntkrnlpa.exe
2010-04-16 15:36:56 406016 ----a-w- c:\windows\system32\usp10.dll
2010-03-30 16:24:40 317440 ------w- c:\windows\system32\mp4sdecd.dll
2010-03-30 04:52:26 262416 ----a-w- c:\windows\system32\mpg4ds32.ax
2010-03-10 06:15:52 420352 ----a-w- c:\windows\system32\vbscript.dll
2010-03-05 14:37:40 65536 ----a-w- c:\windows\system32\asycfilt.dll
2010-02-12 04:33:11 100864 ----a-w- c:\windows\system32\6to4svc.dll
2010-02-05 18:27:45 1291776 ----a-w- c:\windows\system32\quartz.dll
2010-01-29 14:43:39 307260 ----a-w- c:\windows\system32\l3codeca.acm
2010-01-13 14:01:25 86016 ----a-w- c:\windows\system32\cabview.dll
2009-12-24 06:59:40 177664 ----a-w- c:\windows\system32\wintrust.dll
2009-12-16 18:43:27 343040 ----a-w- c:\windows\system32\mspaint.exe
2009-12-14 07:08:23 33280 ----a-w- c:\windows\system32\csrsrv.dll
2009-11-27 17:11:44 17920 ----a-w- c:\windows\system32\msyuv.dll
2009-11-27 16:07:35 8704 ----a-w- c:\windows\system32\tsbyuv.dll
2009-11-27 16:07:35 28672 ----a-w- c:\windows\system32\msvidc32.dll
2009-11-27 16:07:34 84992 ----a-w- c:\windows\system32\avifil32.dll
2009-11-27 16:07:34 48128 ----a-w- c:\windows\system32\iyuv_32.dll
2009-11-27 16:07:34 11264 ----a-w- c:\windows\system32\msrle32.dll
2009-11-21 15:51:04 471552 ----a-w- c:\windows\apppatch\aclayers.dll
2009-11-14 00:49:00 129784 -c----w- c:\windows\system32\pxafs.dll
2009-11-14 00:49:00 120056 -c----w- c:\windows\system32\pxcpyi64.exe
2009-11-14 00:49:00 118520 -c----w- c:\windows\system32\pxinsi64.exe
2009-10-21 05:38:36 75776 ----a-w- c:\windows\system32\strmfilt.dll
2009-10-21 05:38:36 25088 ----a-w- c:\windows\system32\httpapi.dll
2009-10-15 16:28:26 81920 ----a-w- c:\windows\system32\fontsub.dll
2009-10-13 10:30:16 270336 ----a-w- c:\windows\system32\oakley.dll
2009-10-12 13:38:19 149504 ----a-w- c:\windows\system32\rastls.dll
2009-10-12 13:38:18 79872 ----a-w- c:\windows\system32\raschap.dll
2009-09-30 02:19:56 325120 ----a-w- c:\windows\system32\ati2dvag.dll
2009-09-30 02:15:00 593920 ------w- c:\windows\system32\ati2sgag.exe
2009-09-30 02:10:52 204800 ----a-w- c:\windows\system32\atipdlxx.dll
2009-09-30 02:10:36 155648 -c--a-w- c:\windows\system32\Oemdspif.dll
2009-09-30 02:10:24 26112 -c--a-w- c:\windows\system32\Ati2mdxx.exe
2009-09-30 02:10:16 43520 ----a-w- c:\windows\system32\ati2edxx.dll
2009-09-30 02:10:02 155648 ----a-w- c:\windows\system32\ati2evxx.dll
2009-09-30 02:08:50 602112 ----a-w- c:\windows\system32\ati2evxx.exe
2009-09-30 02:08:48 307200 ----a-w- c:\windows\system32\atiiiexx.dll
2009-09-30 02:07:30 53248 -c--a-w- c:\windows\system32\ATIDDC.DLL
2009-09-30 02:07:08 11845632 -c--a-w- c:\windows\system32\atioglxx.dll
2009-09-30 02:00:06 3818272 ----a-w- c:\windows\system32\ati3duag.dll
2009-09-30 01:47:22 2670592 ----a-w- c:\windows\system32\ativvaxx.dll
2009-09-30 01:30:32 475136 ----a-w- c:\windows\system32\atikvmag.dll
2009-09-30 01:28:36 17408 -c--a-w- c:\windows\system32\atitvo32.dll
2009-09-30 01:22:42 626688 ----a-w- c:\windows\system32\ati2cqag.dll
2009-09-11 14:18:39 136192 ----a-w- c:\windows\system32\msv1_0.dll
2009-09-04 21:03:36 58880 ----a-w- c:\windows\system32\msasn1.dll
2009-09-01 14:46:07 282654 ----a-w- c:\windows\system32\msaud32.acm
2009-08-26 08:00:21 247326 ----a-w- c:\windows\system32\strmdll.dll
2009-08-25 09:17:27 354816 ----a-w- c:\windows\system32\winhttp.dll
2009-08-18 04:33:52 1193832 ----a-w- c:\windows\system32\FM20.DLL
2009-08-06 23:24:10 217816 ----a-w- c:\windows\system32\wuaucpl.cpl
2009-08-05 09:01:48 204800 ----a-w- c:\windows\system32\mswebdvd.dll
2009-07-31 15:05:44 1372672 ----a-w- c:\windows\system32\msxml6.dll
2009-07-31 12:47:04 499712 -c--a-w- c:\windows\system32\msvcp71.dll
2009-07-31 12:47:04 348160 -c--a-w- c:\windows\system32\msvcr71.dll
2009-07-26 21:44:56 48448 ----a-w- c:\windows\system32\sirenacm.dll
2009-07-21 04:05:40 1348432 ----a-w- c:\windows\system32\msxml4.dll
2009-07-21 04:05:00 91656 ----a-w- c:\windows\system32\msxml4r.dll
2009-07-17 19:01:06 58880 ----a-w- c:\windows\system32\atl.dll
2009-07-17 16:22:18 1435648 ----a-w- c:\windows\system32\query.dll
2009-07-14 03:43:24 286208 ----a-w- c:\windows\system32\wmpdxm.dll
2009-06-25 08:25:26 730112 ----a-w- c:\windows\system32\lsasrv.dll
2009-06-25 08:25:26 56832 ----a-w- c:\windows\system32\secur32.dll
2009-06-25 08:25:26 54272 ----a-w- c:\windows\system32\wdigest.dll
2009-06-25 08:25:26 301568 ----a-w- c:\windows\system32\kerberos.dll
2009-06-12 12:31:39 76288 ----a-w- c:\windows\system32\telnet.exe
2009-06-10 13:19:38 2066432 ----a-w- c:\windows\system32\mstscax.dll
2009-06-10 06:14:49 132096 ----a-w- c:\windows\system32\wkssvc.dll
2009-05-07 15:32:35 345600 ----a-w- c:\windows\system32\localspl.dll
2009-04-02 03:02:22 604160 ----a-w- c:\windows\system32\wmspdmod.dll
2009-03-16 19:18:32 69448 -c--a-w- c:\windows\system32\XAPOFX1_3.dll
2009-03-16 19:18:32 517448 -c--a-w- c:\windows\system32\XAudio2_4.dll
2009-03-16 19:18:32 235352 -c--a-w- c:\windows\system32\xactengine3_4.dll
2009-03-16 19:18:32 22360 -c--a-w- c:\windows\system32\X3DAudio1_6.dll
2009-03-09 20:27:22 453456 -c--a-w- c:\windows\system32\d3dx10_41.dll
2009-03-09 20:27:22 4178264 -c--a-w- c:\windows\system32\D3DX9_41.dll

============= FINISH: 10:31:51.68 ===============

Attached Files



BC AdBot (Login to Remove)

 


#2 kahdah

kahdah

  • Security Colleague
  • 11,138 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Florida
  • Local time:06:02 PM

Posted 14 November 2010 - 09:22 AM

Hello Ody11

Welcome to BleepingComputer :)
==========================
  • Download OTL to your desktop.
  • Double click on OTL to run it.
  • Check the boxes beside LOP Check and Purity Check.
  • Click the Run Scan button. Do not change any settings unless otherwise told to do so. The scan wont take long.
  • When the scan completes, it will open two notepad windows. OTL.Txt and Extras.Txt. These are saved in the same location as OTL.
  • Please copy (Edit->Select All, Edit->Copy) the contents of these files, one at a time, and post it with your next reply.
====================
Download This file. Note its name and save it to your root folder, such as C:\.

  • Disconnect from the Internet and close all running programs.
  • Temporarily disable any real-time active protection so your security program drivers will not conflict with this file.
  • Click on this link to see a list of programs that should be disabled.
  • Double-click on the downloaded file to start the program. (If running Vista, right click on it and select "Run as an Administrator")
  • Allow the driver to load if asked.
  • You may be prompted to scan immediately if it detects rootkit activity.
  • If you are prompted to scan your system click "Yes" to begin the scan.
  • If not prompted, click the "Rootkit/Malware" tab.
  • On the right-side, all items to be scanned should be checked by default except for "Show All". Leave that box unchecked.
  • Select all drives that are connected to your system to be scanned.
  • Click the Scan button to begin. (Please be patient as it can take some time to complete)
  • When the scan is finished, click Save to save the scan results to your Desktop.
  • Save the file as Results.log and copy/paste the contents in your next reply.
  • Exit the program and re-enable all active protection when done.

Please do not pm for help, post it in the forums instead.

If I am helping you and have not responded for 48 hours please send me a pm as I don't always get notifications.

My help is always free, however, if you would like to make a donation to me for the help I have provided please click here Posted Image




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users